Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4025 articles · 143446 vulns · 36/41 feeds (7d)
← Back to list
—
CVE-2025-35991
intel · Intel Platform

CVE-2025-35991: Improper initialization in the UEFI firmware for some Intel platforms within Ring 0: Bare Metal OS may allow an informat

Description

Improper initialization in the UEFI firmware for some Intel platforms within Ring 0: Bare Metal OS may allow an information disclosure. System software adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.

Affected Products

VendorProductVersions
intelIntel PlatformSee references

References

  • https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01413.html

Related News (1 articles)

Tier C
VulDB4h ago
CVE-2025-35991 | Intel Platform initialization (intel-sa-01413)
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
CWECWE-665
PublishedMay 12, 2026
Last enriched4h agov2
Trending Score20
Source articles1
Independent1
Info Completeness7/14
Missing: cvss, epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2025-35969
CVE-2025-35969: Uncontrolled search path for some Intel(R) Server Firmware Update Utility Software before version 16.0.12. within Ring 3
Trending: 25
HIGHCVE-2026-43120
RDMA/irdma: Fix double free related to rereg_user_mr
Trending: 20
PRE-CVE
Multiple Vulnerabilities in Intel Software Products
Trending: 20
HIGHCVE-2026-31779
wifi: iwlwifi: mvm: fix potential out-of-bounds read in iwl_mvm_nd_match_info_handler()
Trending: 15
NONECVE-2026-31691
igb: remove napi_synchronize() in igb_down()
Trending: 7

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 12, 2026
Discovered by ZDM
May 12, 2026
Updated: product, severity
May 12, 2026

Version History

v2
Last enriched 4h ago
v2Tier C4h ago

Updated product to 'Intel Platform' and changed severity to 'HIGH'.

productseverity
via VulDB
v14h ago

Initial creation